skills/antfu/skills/pnpm/Gen Agent Trust Hub

pnpm

Pass

Audited by Gen Agent Trust Hub on Sep 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a technical reference for the pnpm package manager. All examined files consist of educational material, CLI documentation, and configuration examples designed to assist developers.
  • [SAFE]: The skill explicitly documents and encourages the use of pnpm's supply-chain security features, such as the build-script approval map (allowBuilds), lockfile integrity checks, and minimum release age gating.
  • [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or unauthorized command execution was found within the skill's instructions, scripts, or metadata. All external links point to official documentation or reputable open-source repositories.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 28, 2026, 12:58 PM
Security Audit — agent-trust-hub — pnpm